Unlock instant, AI-driven research and patent intelligence for your innovation.

Adaptive data loss prevention

a data loss prevention and data technology, applied in the field of computing systems and environments, can solve the problems of complete stoppage of environment operations, risk of disclosure of sensitive data that would have otherwise been blocked, and complete blockage of data access operations, so as to prevent the loss of sensitive data

Pending Publication Date: 2022-03-31
CITRIX SYST INC
View PDF2 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Benefits of technology

The patent text describes a solution for protecting sensitive data during a data loss prevention (DLP) outage. The solution involves a gateway that creates rules and templates in a structured document form to replicate DLP decisions. The gateway can mask multiple web responses with similar structures and reduce the amount of exposed sensitive data. This improves data security and reduces resource consumption. The technical effect of the solution is improved data security and reduced resource consumption.

Problems solved by technology

While such a platform may be used to evaluate the risk and control access to various data in the computing environment, there may be several technical challenges in fully utilizing the capabilities of the DLP service.
For one, when the DLP service (e.g., residing on the cloud) is down or otherwise inaccessible, the transactions to access the data may be entirely blocked (e.g., fail closed) harming operations of environment or wholly allowed (e.g., fail open) risking disclosure of sensitive data that would have been otherwise blocked.
Since the environment may have been configured to restrict any access to data without permission by the DLP service, the unavailability of the DLP service may also result in the complete stoppage of operations of environment.
For another, even when the DLP service is available, each request may consume a large amount of computing and networking resources, and the costs of processing may become significant over time.
For an enterprise with over several thousand users and each user accessing the information page once a month, the number of DLP calls may also be in the several of thousands which can consume vast resources and significantly increase operating costs.
Not to mention, the processing of the requests at the DLP service may lead to a reduction in performance due to overhead for each request.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Adaptive data loss prevention
  • Adaptive data loss prevention
  • Adaptive data loss prevention

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0041]For purposes of reading the description of the various embodiments below, the following descriptions of the sections of the specification and their respective contents may be helpful:

[0042]Section A describes a network environment and computing environment which may be useful for practicing embodiments described herein;

[0043]Section B describes embodiments of systems and methods for delivering a computing environment to a remote user;

[0044]Section C describes embodiments of systems and methods for virtualizing an application delivery controller;

[0045]Section D describes embodiments of systems and methods for providing a clustered appliance architecture environment; and

[0046]Section E describes embodiments of systems and methods for adaptive data loss prevention (DLP) using rules and templates for responses.

A. Network and Computing Environment

[0047]Referring to FIG. 1A, an illustrative network environment 100 is depicted. Network environment 100 may include one or more clients ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

Described embodiments provide systems and methods for adaptive data loss prevention. A first computing device may generate, according to a first response from a server and an output from a second computing device identifying sensitive data in the first response, at least one rule regarding the sensitive data, and at least one template for data loss prevention (DLP) responses. The first computing device may determine, according to the at least one rule, a match to a second response from the server, that includes the sensitive data. The first computing device may provide, according to the match and the at least one template, a DLP response to redact the sensitive data of the second response, in place of a DLP output from the second computing device identifying the sensitive data in the second response.

Description

FIELD OF THE DISCLOSURE[0001]The present application generally relates to computing systems and environments. In particular, the present application relates to systems and methods for adaptive data loss prevention.BACKGROUND[0002]Data may be stored and maintained in a computing environment. A data loss prevention (DLP) application may detect potential or actual exfiltration of data from the computing environment.BRIEF SUMMARY[0003]A computing environment (e.g., an enterprise) may store and maintain various data (e.g., in the form of one or more files). A data loss prevention (DLP) service may be used to assess a level of risk in an attempt to access the data. When a query to access the data (e.g., read or write), a computing device of the environment may send a request to determine the level of risk to the DLP service. The DLP service may calculate the level of risk based on various factors. In accordance with the level of risk and security policies, the DLP service may permit or re...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F21/62G06F16/957
CPCG06F21/6227G06F16/9577H04L63/0245H04L63/1416G06F21/6245
Inventor SINGH, MANBINDER PAL
Owner CITRIX SYST INC